RE: [PHP] security
| From: | Cal Evans | Date: | Fri, 23 Mar 2001 04:12:15 +0000 |
| Subject: | RE: [PHP] security | ||
| References: | 1 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-45242@lists.php.net to get a copy of this message | ||
check HTTP_REFERER. If it's not your server. toss it. It's not the most
secure way but check the page, there are other variables you can use to
accomplish the same thing.
http://www.php.net/manual/en/language.variables.predefined.php
Cal
http://www.calevans.com
-----Original Message-----
From: Randy Johnson [mailto:programmer@jennybug.com]
Sent: Thursday, March 22, 2001 9:48 PM
To: php-general@lists.php.net
Subject: [PHP] security
In PHP how do I make it so a script cannot be called from somewhere else
other than from my server.
Example
http://domain.com/mail.php is my mail script that is
called by
http://domain.com/signup.html
How do I make it so
http://somebodyelsesdomain.com/signup.html
cannot call the mail.php script.
thanks
Randy
--
PHP General Mailing List (http://www.php.net/)
To unsubscribe, e-mail: php-general-unsubscribe@lists.php.net
For additional commands, e-mail: php-general-help@lists.php.net
To contact the list administrators, e-mail: php-list-admin@lists.php.net